Savannah lwIP SMTP client
- CISA: 118 events in the last 90 days
- Previous: 2 days earlier · CISA Adds One Known Exploited Vulnerability to Catalog
What happened
View CSAF Summary Successful exploitation of this vulnerability could crash the device being accessed; a buffer overflow condition may allow remote code execution. The following versions of Savannah lwIP SMTP client are affected: lwIP SMTP client 2.2.1 (CVE-2026-15340) CVSS Vendor Equipment v3 9.8 Savannah lwIP SMTP client 1 Vulnerability Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') Backgro…
Summary assembled by rule from the sources below